Privacy Policy
Effective date: June 17, 2026 · Last updated: June 17, 2026
QuickFlow ("we," "our," or "us") is a workflow management application that connects to QuickBooks Online via the Intuit Developer API. This Privacy Policy explains what information we collect, how we use it, how we share it, and your rights regarding that information.
1. Information We Collect
a. Account & Identity Information
When you log in through our authentication provider (Auth0), we receive and store your email address, name, and a unique identifier linked to your identity. We store this in our own database to associate your account with an organization in QuickFlow.
b. QuickBooks Online Data
After you authorize QuickFlow to connect to your QuickBooks Online company, we access and store the following data from the Intuit QuickBooks Online API on your behalf:
- Company / Realm information — your QuickBooks company ID (Realm ID) used to identify your account
- Customers — customer names, contact details, and billing information
- Invoices & Estimates — invoice numbers, line items, amounts, due dates, and status
- Payments — payment amounts, dates, and linked invoices
- Items / Products — product and service descriptions used on invoices
- Sync Records — logs of data synchronization events between QuickFlow and QuickBooks
We access this data using OAuth 2.0 tokens issued by Intuit. We store access tokens and refresh tokens securely in our database solely for the purpose of operating QuickFlow on your behalf. We never use these tokens to access QuickBooks data beyond what is necessary to provide the service.
c. Usage & Technical Information
We may collect standard web server logs including IP addresses, browser type, pages visited, and timestamps. This information is used for security monitoring and improving the application.
2. How We Use Your Information
We use the information described above to:
- Authenticate you and manage your QuickFlow account
- Connect to and synchronize data with your QuickBooks Online company
- Display your customers, invoices, estimates, and payments within the QuickFlow interface
- Allow you to create and manage workflow records (jobs, projects, notes, receipts) tied to QuickBooks data
- Send data back to QuickBooks Online when you take actions within QuickFlow (e.g., creating or updating invoices)
- Maintain audit logs and sync records for your organization
- Respond to support requests and communicate with you about the service
- Comply with legal obligations
We do not use your QuickBooks data or financial information for advertising, marketing profiling, or any purpose other than operating QuickFlow for your organization.
3. How We Share Your Information
We do not sell your personal information or QuickBooks data. We share information only in the following limited circumstances:
- Intuit / QuickBooks Online — data you create or update in QuickFlow is transmitted back to QuickBooks Online via the Intuit API as part of the core service.
- Auth0 — we use Auth0 as our authentication provider. Auth0 processes login credentials and returns identity information to our application. Auth0's privacy policy is available at auth0.com/privacy.
- Microsoft Azure — our application and database are hosted on Microsoft Azure. Data is stored in Azure SQL Database within a secured environment. Microsoft's privacy practices are described at privacy.microsoft.com.
- Legal requirements — we may disclose information if required to do so by law, court order, or governmental authority.
4. QuickBooks OAuth Authorization
QuickFlow uses Intuit's OAuth 2.0 authorization framework. When you connect QuickFlow to QuickBooks Online:
- You are redirected to Intuit's login and consent screen, where you explicitly authorize the scopes requested.
- We request only the scopes necessary to operate the service (accounting data read/write).
- You can revoke QuickFlow's access at any time through your Intuit account connections page.
- Revoking access will prevent QuickFlow from syncing with QuickBooks but will not automatically delete data already stored in QuickFlow. To request deletion of that data, contact us at the address below.
5. Data Retention
We retain your account information and QuickBooks-sourced data for as long as your organization has an active account in QuickFlow. If you request account deletion, we will delete your organization's data from our systems within 30 days, except where retention is required by law or legitimate business records obligations.
OAuth access and refresh tokens are deleted from our database when you disconnect QuickBooks from your QuickFlow organization or when your account is deleted.
6. Data Security
We implement industry-standard security measures to protect your information, including:
- TLS encryption for all data in transit
- Encrypted storage for OAuth tokens
- Role-based access controls within the application
- Azure SQL Database security features including firewall rules and encrypted connections
- Authentication enforced for all non-public pages
No method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Your Rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you
- Correct inaccurate information
- Request deletion of your information
- Withdraw consent for processing where consent is the legal basis
- Object to or restrict certain processing activities
To exercise any of these rights, contact us at the address below.
8. Children's Privacy
QuickFlow is a business application and is not directed to individuals under 18 years of age. We do not knowingly collect personal information from minors.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date at the top of this page. We encourage you to review this policy periodically. Continued use of QuickFlow after changes are posted constitutes your acceptance of the updated policy.
10. Contact Us
If you have questions or concerns about this Privacy Policy, or to submit a data access or deletion request, please contact us at:
QuickFlowEmail: joelbarnum@yahoo.com